Google Workspace Provisioning Error "Failed to create new user. Invalid Password"
Last Updated:
Overview
Provisioning users from Okta to Google Workspace fails with the following error message:
Invalid Password
Applies To
- Okta Classic Engine
- Google Workspace
- Provisioning
- Password policy
Cause
When trying to push/create new users, Google Workspace needs to validate that the Password policies of Okta and Google Workspace match. If Password policies do not match, the error in question occurs.
Solution
There are two scenarios, depending on the existing setup:
-
If the users are mastered by Okta, make sure that the Okta password policy that applies to the accounts that need to be provisioned matches the Google Workspace password policy.
-
If users are mastered by Active Directory, the Okta password policy that applies to Active Directory-sourced users must match the Google Workspace password policy.
NOTE: Password policies on Google Workspace will not apply to users who are federated with a third-party identity provider (as shown in the screenshot above).
